Lucene search

K
freebsdFreeBSDBA73F494-65A8-11DE-AEF5-001C2514716C
HistoryJun 30, 2009 - 12:00 a.m.

phpmyadmin -- XSS vulnerability

2009-06-3000:00:00
vuxml.freebsd.org
14

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

EPSS

0.003

Percentile

68.2%

The phpMyAdmin project reports:

It was possible to conduct an XSS attack via a crafted
SQL bookmark.
All 3.x releases on which the β€œbookmarks” feature is
active are affected, previous versions are not.

OSVersionArchitecturePackageVersionFilename
FreeBSDanynoarchphpmyadmin<Β 3.2.0.1UNKNOWN

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

EPSS

0.003

Percentile

68.2%